Researchers Report 84 Flaws in 4G and 5G Cores, Including a Session Hijacking Flaw

Researchers have uncovered an astonishing 84 vulnerabilities in the core software of both 4G and 5G mobile networks, including one critical flaw that allows hackers to hijack sensitive user sessions. This alarming discovery highlights the pressing need for telecom operators to bolster their network security and reassure users that their personal data is safe.

The research team, comprising experts from several prominent universities and cybersecurity firms, employed artificial intelligence (AI) models to scrutinize the source code of the mobile network core software. Their analysis revealed a staggering array of vulnerabilities, many of which can be exploited remotely by hackers. The most critical flaw is a session hijacking vulnerability, which enables attackers to assume control over a user’s account and access sensitive data without needing any login credentials.

The 4G and 5G cores are the brain of mobile networks, responsible for routing calls, texts, and internet traffic between devices and service providers. These systems are notoriously complex, with millions of lines of code that make them ripe targets for exploitation by hackers. By exploiting these vulnerabilities, attackers can gain unauthorized access to user data, disrupt network services, or even conduct malicious activities like call spoofing.

The researchers’ findings also include a range of other security issues, including buffer overflow flaws and authentication bypass vulnerabilities. These weaknesses can be exploited to compromise the integrity of mobile networks and put users at risk of identity theft, financial loss, or reputational damage. The severity of these vulnerabilities underscores the importance for telecom operators to prioritize network security and invest in robust threat detection systems.

The widespread nature of these vulnerabilities means that millions of users across the globe could be affected if exploited by hackers. Given the highly interconnected nature of mobile networks, a single breach can have far-reaching consequences, compromising not only individual user data but also entire network infrastructure. The researchers’ report serves as a wake-up call for telecom operators to take immediate action and shore up their defenses against these critical vulnerabilities.

To mitigate the risks posed by these vulnerabilities, organizations should prioritize regular software updates, implement robust threat detection systems, and conduct thorough risk assessments of their mobile networks. Moreover, users can protect themselves by enabling two-factor authentication (2FA), using secure passwords, and keeping their devices’ operating systems up to date with the latest security patches. By taking proactive steps to address these vulnerabilities, both telecom operators and individual users can minimize the risks associated with these critical flaws and maintain the integrity of mobile networks.


Source: The Hacker News — 2026-07-31